ISC Certified Information Systems Security Professional (CISSP) CISSP Question # 203 Topic 21 Discussion

ISC Certified Information Systems Security Professional (CISSP) CISSP Question # 203 Topic 21 Discussion

CISSP Exam Topic 21 Question 203 Discussion:
Question #: 203
Topic #: 21

As part of the security assessment plan, the security professional has been asked to use a negative testing strategy on a new website. Which of the following actions would be performed?


A.

Use a web scanner to scan for vulnerabilities within the website.


B.

Perform a code review to ensure that the database references are properly addressed.


C.

Establish a secure connection to the web server to validate that only the approved ports are open.


D.

Enter only numbers in the web form and verify that the website prompts the user to enter a valid input.


Get Premium CISSP Questions

Contribute your Thoughts:


Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.